EvilZone
Hacking and Security => Mobile Hacking => Topic started by: khofo on April 29, 2014, 01:08:24 AM
-
Hey Guys,
As u probably know whatsapp is the less secure chat client on mobile devices.
So I thought of developing of course with your help guys a program that will automate the collect of all messages sent and received.
My idea is as following:
- Create a Program that will allie and automate all the steps sited bellow
1-Collect all the packets that are destinated to whatsapp server or received from whastapp serers ( a little wireshark)
2- take all these packets and transform them to plain text (easy peasy) because the messages are transited in plain text without any encryption.
I hope u can help me guys create this for making it availble to anyone willing to know what is being sent from there wifi.
-
WhatsApp is using encryption for quite some time now. AFAIK the key is a mixture of the devices IMEI and a password the server sends you.
If it would still be that easy, then there would already be a lot of apps out there doing that...
-
If you search you will find the exploits of whatsapp ;)
-
Good old days when I sat in with WS on my gf's chats :P
Its encrypted and pwned time after time, however this today belongs to facebook and I am pretty sure they will manage this differently.
Nothing is unbreakable but it will be harder for sure.
-
Guys
Is there really something called whatsapp sniffer ? I have come across few where is says download but most of them has been spam with surveys.
Please advise.
-
Whatsapp now uses end-to-end encryption by default :P
http://www.wired.com/2014/11/whatsapp-encrypted-messaging/
You could always sniff but you're only gonna end up with encrypted garbage :P
-
I would like to try a sniffer and see what kind of packets are being downloaded. Do you know where I can download one ? As I said the once I saw all were mostly spam as they ask for garbage survey to finish. I had something called whatsapp sniffer v3.2 but it wouldnt work as it asked me for latest one which was v3.3 and any time I looked to download all I could see was survey and spam.
-
I would like to try a sniffer and see what kind of packets are being downloaded. Do you know where I can download one ? As I said the once I saw all were mostly spam as they ask for garbage survey to finish. I had something called whatsapp sniffer v3.2 but it wouldnt work as it asked me for latest one which was v3.3 and any time I looked to download all I could see was survey and spam.
Just sniff it with wireshark?
A sniffer is a sniffer and wireshark does the job fine.
They way you are talking you will end up with a million viruses on your machine.
-
Wireshark is great idea, but if someone is not on network near by. Somewhere in another country, how would you be able to ? any ideas ?
-
Wireshark is great idea, but if someone is not on network near by. Somewhere in another country, how would you be able to ? any ideas ?
U can't unless u hack whatsapp servers or dump the traffic in a submarine data cable :p
-
its available just you should make an android app that upload "sdcard/whatsapp/databases/msgstore.db.crypt8 " for you
just a php and a host is needed
you can install the android app with metasploit or local access
you can mix this app with other
just you need internet and sd card access
but the hardest step is dycrypt the crypt8 files
i have some idea about that can help you
for cantacting me : movahed@rocketmail.com ;)
Fix that fucking language, last warning.
-
Maybe you could make program that get's data of whatsapp database(which is stored on the sd-card ).
But I am not sure if this data is encrypted.
-
Maybe you could make program that get's data of whatsapp database(which is stored on the sd-card ).
But I am not sure if this data is encrypted.
(http://i.imgur.com/M2q5vyc.jpg)